CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14055  CVE-2005-2849  Candidate  Argument injection vulnerability in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to (1) read portions of source code via the -f option to Dig (dig_device.cgi), (2) determine file existence via the -r argument to Tcpdump (tcpdump_device.cgi) or (3) modify files in the cgi-bin directory via the -w argument to Tcpdump.  Assigned (20050908)  None (candidate not yet proposed)    View
14056  CVE-2005-2850  Candidate  SlimFTPd 3.17 allows remote attackers to cause a denial of service (crash) via certain (1) USER and (2) PASS commands, possibly due to a buffer overflow or off-by-one error.  Assigned (20050908)  None (candidate not yet proposed)    View
14057  CVE-2005-2851  Candidate  smb4k 0.4 and other versions before 0.6.3 allows local users to read sensitive files via a symlink attack on the (1) smb4k.tmp or (2) sudoers temporary files.  Assigned (20050908)  None (candidate not yet proposed)    View
14058  CVE-2005-2852  Candidate  Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.  Assigned (20050908)  None (candidate not yet proposed)    View
14059  CVE-2005-2853  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in GuppY 4.5.3a and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the pg parameter to printfaq.php, or the (2) Referer or (3) User-Agent HTTP headers, which are not properly handled by error.php.  Assigned (20050908)  None (candidate not yet proposed)    View

Page 18916 of 20943, showing 5 records out of 104715 total, starting on record 94576, ending on 94580

Actions